2. Cookie scoped to parent domain
3. Cookie without HttpOnly flag set
| Severity: | High | 
| Confidence: | Certain | 
| Host: | http://na.link.decdna.net | 
| Path: | /n/58844/58845/lt.dell | 
| GET /n/58844/58845/d6c86%0d%0a0f7bd7a4199/119lgec;11;4;;8;;cqlnjn Host: na.link.decdna.net Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close | 
| HTTP/1.1 302 Found Date: Fri, 07 Jan 2011 21:52:59 GMT Server: Apache/1.3.33 (Unix) Pragma: no-cache Expires: Fri, 07 Jan 2011 21:52:59 GMT location: http://na.link.decdna.net 0f7bd7a4199/119lgec;11;4;;8;;cqlnjn Set-Cookie: %2edecdna%2enet/%2fn P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS COM NAV INT" Set-Cookie: id=9286424636868789150; expires=Sat, 07-Jan-2012 21:52:59 GMT; path=/; domain=.decdna.net; Set-Cookie: name=9286424636868789716; path=/; domain=.decdna.net; Content-Length: 0 Keep-Alive: timeout=60 Connection: Keep-Alive Content-Type: text/plain | 
| Severity: | Information | 
| Confidence: | Certain | 
| Host: | http://na.link.decdna.net | 
| Path: | /n/58844/58845/lt.dell | 
| GET /n/58844/58845/lt.dell Host: na.link.decdna.net Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close | 
| HTTP/1.1 302 Found Date: Fri, 07 Jan 2011 21:52:58 GMT Server: Apache/1.3.33 (Unix) Pragma: no-cache Expires: Fri, 07 Jan 2011 21:52:58 GMT location: http://na.link.decdna.net Set-Cookie: %2edecdna%2enet/%2fn P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS COM NAV INT" Set-Cookie: id=9286424794322960847; expires=Sat, 07-Jan-2012 21:52:58 GMT; path=/; domain=.decdna.net; Set-Cookie: name=9286424794054525701; path=/; domain=.decdna.net; Content-Length: 0 Keep-Alive: timeout=60 Connection: Keep-Alive Content-Type: text/plain | 
| Severity: | Information | 
| Confidence: | Certain | 
| Host: | http://na.link.decdna.net | 
| Path: | /n/58844/58845/lt.dell | 
| GET /n/58844/58845/lt.dell Host: na.link.decdna.net Accept: */* Accept-Language: en User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0) Connection: close | 
| HTTP/1.1 302 Found Date: Fri, 07 Jan 2011 21:52:58 GMT Server: Apache/1.3.33 (Unix) Pragma: no-cache Expires: Fri, 07 Jan 2011 21:52:58 GMT location: http://na.link.decdna.net Set-Cookie: %2edecdna%2enet/%2fn P3P: CP="NOI CURa ADMa DEVa TAIa OUR BUS COM NAV INT" Set-Cookie: id=9286424794322960847; expires=Sat, 07-Jan-2012 21:52:58 GMT; path=/; domain=.decdna.net; Set-Cookie: name=9286424794054525701; path=/; domain=.decdna.net; Content-Length: 0 Keep-Alive: timeout=60 Connection: Keep-Alive Content-Type: text/plain |